Digital / Electronic Signatures PET Workshop 2003 Dresden Henry - - PowerPoint PPT Presentation

digital electronic signatures
SMART_READER_LITE
LIVE PREVIEW

Digital / Electronic Signatures PET Workshop 2003 Dresden Henry - - PowerPoint PPT Presentation

Digital / Electronic Signatures PET Workshop 2003 Dresden Henry Krasemann ICPP Schleswig-Holstein Use of Pseudonyms in Digital Signatures Pseudonym instead of name in certificate (no further data) States are free to allow use of


slide-1
SLIDE 1

Digital / Electronic Signatures

PET Workshop 2003 Dresden Henry Krasemann ICPP Schleswig-Holstein

slide-2
SLIDE 2

Use of Pseudonyms in Digital Signatures

Pseudonym instead of name in certificate (no further data) States are free to allow use of pseudonyms (e.g. German law wants use of Pseudonyms) Indicated by the entry „PN“ Restriction who can reveal Pseudonym

slide-3
SLIDE 3

Different Types of Electronic Signatures

Other Electronic Signatures EU Directive 1999/93/EC

slide-4
SLIDE 4

Different Types of Electronic Signatures

Other Advanced Electronic Signatures EU Directive 1999/93/EC

slide-5
SLIDE 5

Different Types of Electronic Signatures

Other Advanced Qualified Electronic Signatures EU Directive 1999/93/EC

slide-6
SLIDE 6

Different Types of Electronic Signatures

Other Advanced Qualified Accredited (e.g. Germany) Electronic Signatures EU Directive 1999/93/EC

slide-7
SLIDE 7

Other Electronic Signatures

Means data in electronic form which are attached to or logically associated with

  • ther electronic data and which serve as a

method of authentication E.g. PGP Also scanned handwritten signature pasted under email

slide-8
SLIDE 8

Advanced Electronic Signatures

It is uniquely linked to the signatory it is capable of identifying the signatory it is created using means that the signatory can maintain under his sole control it is linked to the data to which it relates in such a manner that any subsequent change

  • f the data is detectable
slide-9
SLIDE 9

Qualified Electronic Signature Requirements of advanced Signature and signature must have been caused with a safe signature construction unity and signature must be based on a valid qualified certificate at the time of its production

slide-10
SLIDE 10

Accredited Electronic Signature „Qualified Electronic Signature based

  • n voluntary accreditation“

Qualified Electronic Signature + Pre- Permission Prove the fulfilment of the duties for qualified signatures before start

slide-11
SLIDE 11

Legal Effects

2 Questions:

  • A. Satisfy legal requirements (e.g.

Standard in Germany no particular form requirements)

  • B. Admissible as evidence in legal

proceedings

slide-12
SLIDE 12

Satisfy legal requirements

Advanced / Other Like normal EMail Where law doesn't require particular form Qualified Same manner as handwriting (relation to paper based data) Accredited Particulary Administration

slide-13
SLIDE 13

Evidence in legal proceedings

Advanced / Other Low Probative Value Full proof necessary / Free Evaluation of Evidence Qualified High probative value Presumption of law e.g. § 292 ZPO (Germany) Accredited Highest probative value Presumption of law

slide-14
SLIDE 14

Liability

Certification-service-provider is liable for damage caused to any entity or legal or natural person who reasonably relies on that certificate (accuracy of information contained in certificate; identification of signatory etc.)

slide-15
SLIDE 15

Questions / Problems Acceptance of pseudonyms in reality Acceptance of certificates of third countries Which algorithms are secure / what if change? How to do new signing when old method becomes unsecure? What is in case of corruption?